http://{BLOCKED}ormjqj42hu.onion/get.php?s=setup&uid={GUID}

 Analysis by: Jesa Golez

 URL BLOCKING DATE/TIME: 11 Mar 2014 06:45:00 PM GMT-8
 RATING: HIGH
 DOMAIN: http://powerwormjqj42hu.onion
 CATEGORY: Disease Vector
 DESCRIPTION: W97M_CRIGENT.A connects to this URL to send and receive commands from a remote malicious user.